nudomainfipacltemplateentry¶
-
nudomainfipacltemplateentry.NUDomainFIPAclTemplateEntry(bambou.nurest_object.NUMetaRESTObject,):
Defines the template of Egress Domain ACL Template entries
Attributes¶
acl_template_name(Mandatory): The name of the parent Template for this acl entryicmp_code: The ICMP Code when protocol selected is ICMPicmp_type: The ICMP Type when protocol selected is ICMPipv6_address_override: Overrides the source IPv6 for Ingress and destination IP for Egress, MAC entries will use this address as the match criteria.dscp: DSCP match condition to be set in the rule. It is either * or from 0-63last_updated_by: ID of the user who last updated the object.last_updated_date: Time stamp when this object was last updated.action: The action of the ACL entry DROP or FORWARD or REDIRECT. Action REDIRECT is allowed only for IngressAdvancedForwardingEntryaddress_override: Overrides destination IP match for Egress.web_filter_id: ID of web filter category or web domain name entity usedweb_filter_stats_logging_enabled: Indicates if web filter statistics logging is enabled for this particular templateweb_filter_type: Indicates type of web filter being setdescription: Description of the ACL entrydestination_port: The destination port to be matched if protocol is UDP or TCP. Value should be either * or single port number or a port rangenetwork_entity_type: Indicates whether the Network Entity of ACL Entry was derived from a L2/L3 Domain template or instance. Possible Values: ENTERPRISENETWORK, NETWORKMACROGROUP, PGEXPRESSION, PGEXPRESSIONTEMPLATE, POLICYGROUP, POLICYGROUPTEMPLATE, PUBLICNETWORK, SAASAPPLICATIONGROUP, SUBNET, SUBNETTEMPLATE, ZONE, ZONETEMPLATE.network_id: The destination network entity that is referenced(subnet/zone/macro)network_type: Type of the source network - VM_SUBNET or VM_ZONE or VM_DOMAIN or SUBNET or ZONE or ENTERPRISE_NETWORK or PUBLIC_NETWORK or ANYmirror_destination_id: This is the ID of the mirrorDestination entity associated with this entityflow_logging_enabled: Is flow logging enabled for this particular templateembedded_metadata: Metadata objects associated with this entity. This will contain a list of Metadata objects if the API request is made using the special flag to enable the embedded Metadata feature. Only a maximum of Metadata objects is returned based on the value set in the system configuration.enterprise_name(Mandatory): The name of the enterprise for the domains parententity_scope: Specify if scope of entity is Data center or Enterprise levellocation_entity_type: Indicates whether the Location Entity of ACL Entry was derived from a L2/L3 Domain template or instance. Possible Values: ENTERPRISENETWORK, NETWORKMACROGROUP, PGEXPRESSION, PGEXPRESSIONTEMPLATE, POLICYGROUP, POLICYGROUPTEMPLATE, PUBLICNETWORK, REDIRECTIONTARGET, REDIRECTIONTARGETTEMPLATE, SUBNET, SUBNETTEMPLATE, ZONE, ZONETEMPLATE.location_id: The ID of the location entity (Subnet/Zone/VportTag)location_type: Type of the location entity - ANY or SUBNET or ZONE or VPORTTAGpolicy_state: State of the policy.domain_name: The name of the domain/domain template for the aclTemplateNames parentsource_port: Source port to be matched if protocol is UDP or TCP. Value can be either * or single port number or a port rangecreation_date: Time stamp when this object was created.priority: The priority of the ACL entry that determines the order of entriesprotocol: Protocol number that must be matchedassociated_live_entity_id: ID of the associated live entityassociated_live_template_id: In the draft mode, the ACL entity refers to this live entity parent. In non-drafted mode, this is nullassociated_traffic_type: The associated Traffic type. L4 Service / L4 Service Groupassociated_traffic_type_id: The associated Traffic Type IDstateful: True means that this ACL entry is stateful, so there will be a corresponding rule that will be created by OVS in the network. False means that there is no corresponding rule created by OVS in the network.stats_id: The statsID that is created in the VSD and identifies this ACL Template Entry. This is auto-generated by VSDstats_logging_enabled: Indicates if stats logging is enabled for this particular templateether_type: Ether type of the packet to be matched. etherType can be * or a valid hexadecimal valueowner: Identifies the user that has created this object.external_id: External object ID. Used for integration with third party systems
Children¶
| class | fetcher |
| nupermission.NUPermission | permissions |
| numetadata.NUMetadata | metadatas |
| nuglobalmetadata.NUGlobalMetadata | global_metadatas |